Skip to main content
New AI-powered DMARC analysis + open REST API See how → →

Compliance & Trust

Enterprise-grade security

DMARC Report is built by DuoCircle LLC with the security, privacy, and compliance controls that enterprise procurement teams require.

SOC-2 Type II

Annual audit by independent third party. Report available under NDA.

Uptime SLA

Guaranteed uptime with financial credits for any service degradation. SLA terms vary by product.

Encryption

TLS 1.3 in transit, AES-256 at rest. All data encrypted by default.

Standardized on Bonterms

DuoCircle LLC uses Bonterms standardized agreements for NDA and Cloud Terms. Bonterms forms are open-source, lawyer-approved, and adopted by thousands of companies — eliminating weeks of legal redlining.

Available Documentation

SOC-2 Type II Report

Under NDA

Annual third-party audit of security controls, availability, and confidentiality. Available under NDA.

Data Processing Agreement (DPA)

On request

GDPR-compliant DPA covering data processing terms, sub-processors, and data subject rights.

Non-Disclosure Agreement (NDA)

Bonterms

We use the Bonterms Mutual NDA — a standardized, lawyer-approved NDA adopted by thousands of companies. Available for immediate execution.

Service Level Agreement (SLA)

On request

Uptime guarantee with response time commitments and credit calculations. SLA terms vary by product and plan.

Cloud Terms of Service

Bonterms

We use the Bonterms Cloud Terms — standardized cloud service agreement covering service use, data handling, liability, and termination. All paid plans are governed by Bonterms Cloud Terms.

Infrastructure Security Overview

On request

Architecture, hosting, encryption, access controls, incident response, and data retention policies.

Penetration Test Summary

Under NDA

Annual third-party penetration test results summary.

Business Continuity Plan

Under NDA

Disaster recovery, backup procedures, and RTO/RPO commitments.

Request documentation

Our team responds to compliance and procurement inquiries within one business day.

Frequently Asked Questions

Is DMARC Report SOC-2 certified?

Yes. DuoCircle LLC maintains SOC-2 Type II certification. Our SOC-2 report is available under NDA to enterprise customers and prospects. Use the request form below to get a copy.

Do you offer a Data Processing Agreement (DPA)?

Yes. We provide a GDPR-compliant DPA to all customers who process personal data through DMARC Report. Use the request form below or visit our contact page to receive our standard DPA.

Do you sign NDAs?

Yes. We use the Bonterms Mutual NDA (bonterms.com/forms/mutual-nda/). Use the request form below to get started.

What is your SLA?

DMARC Report provides an uptime SLA for paid plans. Our SLA document details uptime commitments, response times, credit calculations, and escalation procedures. Use the request form below for the SLA specific to your plan.

What are Bonterms?

Bonterms are standardized, open-source legal agreements used by thousands of technology companies. By adopting Bonterms Cloud Terms and Mutual NDA, we eliminate weeks of back-and-forth legal review. The terms are balanced, fair, and lawyer-approved. Learn more at bonterms.com.

Where is data hosted?

DMARC Report infrastructure is hosted in the United States with SOC-2 compliant cloud providers. Data is encrypted in transit (TLS 1.3) and at rest (AES-256). Contact us for our full infrastructure security documentation.